Description
The uppy npm package < 1.9.3 is vulnerable to a Server-Side Request Forgery (SSRF) vulnerability, which allows an attacker to scan local or external network or otherwise interact with internal systems.
Remediation
References
https://hackerone.com/reports/786956
Related Vulnerabilities
CVE-2023-26156 Vulnerability in npm package chromedriver
CVE-2021-21252 Vulnerability in npm package jquery-validation
CVE-2022-39248 Vulnerability in maven package org.matrix.android:matrix-android-sdk2
CVE-2022-38639 Vulnerability in npm package markdown-nice
CVE-2022-40084 Vulnerability in maven package org.opencrx:opencrx-core